References


(Russinovich 2005) Russinovich, Mark, and David Solomon. Microsoft Windows Internals 4th Edition. Redmond, WA: Microsoft Press, 2005.

(Microsoft 2006a) “The computer may restart when you add a manifest that has the Windows Vista extension to an .exe file or to a .dll file in Windows XP Service Pack 2 (SP2),” http://support.microsoft.com/Default.aspx?kbid=921337. October 2006.

(MSDN 2006a) “The COM Elevation Moniker,” http://msdn2.microsoft.com/en-us/library/ms679687.aspx. MSDN 2006.

(Wille 2007) “The COM Elevation Moniker,” http://msdn2.microsoft.com/en-us/library/ms679687.aspx. MSDN 2006. http://chrison.net/UACElevationInManagedCodeANETCOMComponentElevated.aspx. February 2007.

(Microsoft 2006b) “Application Compatibility Tools,” http://technet.microsoft.com/en-us/windowsvista/aa905078.aspx.

(Microsoft 2006c) “Security Descriptor Definition Language,” http://msdn2.microsoft.com/en-us/library/aa379567.aspx.

(Microsoft 2006d) ““Microsoft Standard User Analyzer,” http://www.microsoft.com/downloads/details.aspx?FamilyID=DF5.

9B474-C0B7-4422-8C70-B0D9D3D2F575 or http://tinyurl.com/ymnqua. September 2006.

(CVE-2006-1247) Common Vulnerabilities and Exposures. “Rm_mlcache_file in AIX 5.1.0 and AIX 5.3.0 allows local users to overwrite arbitrary files,” http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-1247.

(CVE-2005-2714) Common Vulnerabilities and Exposures. “Passwd in Directory Services in Mac OS X 10.3.x allows local users to overwrite arbitrary files,” http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-2714.

(CVE-2006-1247) Common Vulnerabilities and Exposures. “Rm_mlcache_file in AIX 5.1.0 and AIX 5.3.0 allows local users to overwrite arbitrary files,” http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-1247.

(CVE-2005-2714) Common Vulnerabilities and Exposures. “Passwd in Directory Services in Mac OS X 10.3.x allows local users to overwrite arbitrary files,” http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-2714.

(CVE-2006-4124) Common Vulnerabilities and Exposures. “LibXm local privilege elevation via the DEBUG_FILE environment variable,” http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4124.

(Wikipedia 2006) “Shatter attack,” http://en.wikipedia.org/wiki/Shatter_attack.

(Margosis 2006) Margosis, Aaron. “Fixing ‘LUA bugs’, Part I” http://blogs.msdn.com/aaron_margosis/archive/2006/02/16/533077.aspx. February 2006.

(MSDN 2002) “Signing and Checking Code with Authenticode,” http://msdn.microsoft.com/workshop/security/authcode/signing.asp.



Writing Secure Code for Windows Vista
Writing Secure Code for Windows Vista (Best Practices (Microsoft))
ISBN: 0735623937
EAN: 2147483647
Year: 2004
Pages: 122

flylib.com © 2008-2017.
If you may any questions please contact us: flylib@qtcs.net